Malware

What is “Generic.Dacic.DED21A61.A.13C84F7F”?

Malware Removal

The Generic.Dacic.DED21A61.A.13C84F7F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.DED21A61.A.13C84F7F virus can do?

  • Sample contains Overlay data
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Generic.Dacic.DED21A61.A.13C84F7F?


File Info:

name: D7C0EC05799211A0B697.mlw
path: /opt/CAPEv2/storage/binaries/a6504b5d6ff83c2f1f598d125aeac35ac91af43780101c5ceb7c3e86c97f460c
crc32: 28E1D647
md5: d7c0ec05799211a0b697d586d3d911f9
sha1: 81ebe4262d5be014d98974dfeff30b089f46e9f4
sha256: a6504b5d6ff83c2f1f598d125aeac35ac91af43780101c5ceb7c3e86c97f460c
sha512: 6fed3860ba4c65046d9e88e2f8a268e33345604df981693c766b382757341fc524b789ad429a9812029f32d5fbfc7d16b85f555b87bf354515c5c45c280be0f9
ssdeep: 1536:FDcfLfIb5Ep1uzgyXVdtnqHNWnnn3CCCCrrDR7Drrr6llllFdddd8:FD2LTnuzgyXVd1mIDdrrrv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DE937DA5F8919492F45B41388843FBF2A8A6FC24C64DA653FF80BF4F4872A54F92454B
sha3_384: 229cc0e72aaebf82514787ec567743a76b42a85ed11edd0892267a136bf66a472c28619c98264077274222ec96cab735
ep_bytes: 558bec6aff6870614000685039400064
timestamp: 2017-05-05 08:29:26

Version Info:

Comments:
CompanyName: Hello World
FileDescription: Clien Local RunProcess
FileVersion: 10.0.14393.0 (rs1_release.160715-1616)
InternalName: hello.exe
LegalCopyright: All rights reserved.
LegalTrademarks:
OriginalFilename: Hello World
PrivateBuild:
ProductName: Hello World® Operating System
ProductVersion: 17.000.14393.08
SpecialBuild:
Translation: 0x0409 0x04b0

Generic.Dacic.DED21A61.A.13C84F7F also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.m2Bz
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Dacic.DED21A61.A.13C84F7F
FireEyeGeneric.Dacic.DED21A61.A.13C84F7F
CAT-QuickHealTrojan.Mauvaise.SL1
McAfeeGenericRXBM-PT!D7C0EC057992
MalwarebytesGeneric.Malware.AI.DDS
VIPREGeneric.Dacic.DED21A61.A.13C84F7F
SangforSuspicious.Win32.Save.ins
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:Win32/Nitol.361
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.Genus.CZ
CyrenW32/S-ee8ba259!Eldorado
SymantecSMG.Heur!gen
tehtrisGeneric.Malware
APEXMalicious
ClamAVWin.Trojan.Nitol-6335025-0
BitDefenderGeneric.Dacic.DED21A61.A.13C84F7F
SUPERAntiSpywareTrojan.Agent/Gen-ServStart
AvastWin32:Nitol-B [Trj]
TencentTrojan.Win32.Nitol.wa
SophosTroj/Agent-AYVZ
BaiduWin32.Trojan.ServStart.as
F-SecureTrojan.TR/AD.Nitol.romkq
DrWebTrojan.DownLoader24.51669
ZillyaTrojan.ServStart.Win32.16460
TrendMicroTROJ_NITOL.SMN1
McAfee-GW-EditionBehavesLike.Win32.Generic.nm
EmsisoftGeneric.Dacic.DED21A61.A.13C84F7F (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.ServStart.F
JiangminTrojan.Generic.bhzka
GoogleDetected
AviraTR/AD.Nitol.romkq
MAXmalware (ai score=84)
Antiy-AVLTrojan[DDoS]/Win32.Nitol
XcitiumTrojWare.Win32.Nitol.AHQ@5iwshg
ArcabitGeneric.Dacic.DED21A61.A.13C84F7F
MicrosoftDDoS:Win32/Nitol.A
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Nitol.R205727
Acronissuspicious
ALYacGeneric.Dacic.DED21A61.A.13C84F7F
TACHYONTrojan/W32.Nitol.92894
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_NITOL.SMN1
RisingBackdoor.Overie!1.C6A2 (CLASSIC)
IkarusTrojan.Win32.ServStart
FortinetMalwThreat!E1E6IV
AVGWin32:Nitol-B [Trj]
DeepInstinctMALICIOUS

How to remove Generic.Dacic.DED21A61.A.13C84F7F?

Generic.Dacic.DED21A61.A.13C84F7F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment